# dockerhub

Published articles for dockerhub.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## Hardened Container Images: Images for a Secure Supply Chain

DevFeed: [Hardened Container Images: Images for a Secure Supply Chain](<https://devfeed.tech/articles/hardened-container-images-images-for-a-secure-supply-chain-13079.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/hardened-container-images-images-for-a-secure-supply-chain>)

Published: 2024-04-30T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [supply-chain-security](<https://devfeed.tech/topics/supply-chain-security.md>), [chainguard images](<https://devfeed.tech/topics/chainguard-images.md>), [Containers](<https://devfeed.tech/topics/containers.md>), [container-security](<https://devfeed.tech/topics/container-security.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [grype](<https://devfeed.tech/topics/grype.md>), [snyk](<https://devfeed.tech/topics/snyk.md>)

Tags: [canonical](<https://devfeed.tech/tags/canonical.md>), [canonical-chiselled-image](<https://devfeed.tech/tags/canonical-chiselled-image.md>), [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-images](<https://devfeed.tech/tags/chainguard-images.md>), [container](<https://devfeed.tech/tags/container.md>), [container-image](<https://devfeed.tech/tags/container-image.md>), [container-images](<https://devfeed.tech/tags/container-images.md>), [container-security](<https://devfeed.tech/tags/container-security.md>), [containers](<https://devfeed.tech/tags/containers.md>), [cve](<https://devfeed.tech/tags/cve.md>), [debian](<https://devfeed.tech/tags/debian.md>), [dockerhub](<https://devfeed.tech/tags/dockerhub.md>), [false-positives](<https://devfeed.tech/tags/false-positives.md>), [grype](<https://devfeed.tech/tags/grype.md>), [hardened-container-image](<https://devfeed.tech/tags/hardened-container-image.md>), [iron-bank](<https://devfeed.tech/tags/iron-bank.md>), [redhat](<https://devfeed.tech/tags/redhat.md>), [scanners](<https://devfeed.tech/tags/scanners.md>), [security](<https://devfeed.tech/tags/security.md>), [shift-left](<https://devfeed.tech/tags/shift-left.md>), [snyk](<https://devfeed.tech/tags/snyk.md>), [software-supply-chain](<https://devfeed.tech/tags/software-supply-chain.md>), [supply-chain](<https://devfeed.tech/tags/supply-chain.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>)

### AI overview

Chainguard introduces its inaugural State of Hardened Container Images report, examining the security of hardened container images from providers including Red Hat, Iron Bank, and Chainguard. The article argues that hardened container images deserve distinct consideration from container vulnerability scanning and describes the report as addressing secure software supply chains.

### Source excerpt

Check out our analysis of the hardened container image landscape, including offerings from Red Hat, Iron Bank, and others.

## Chainguard Images now available on Docker Hub

DevFeed: [Chainguard Images now available on Docker Hub](<https://devfeed.tech/articles/chainguard-images-now-available-on-docker-hub-12957.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/chainguard-images-now-available-on-docker-hub>)

Published: 2024-03-14T00:00:00Z

Content type: release

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [chainguard images](<https://devfeed.tech/topics/chainguard-images.md>), [Docker Hub](<https://devfeed.tech/topics/docker-hub.md>), [Docker Verified Publisher](<https://devfeed.tech/topics/docker-verified-publisher.md>), [container images](<https://devfeed.tech/topics/container-images.md>), [Security](<https://devfeed.tech/topics/security.md>), [supply-chain-security](<https://devfeed.tech/topics/supply-chain-security.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>)

Tags: [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-images](<https://devfeed.tech/tags/chainguard-images.md>), [container-images](<https://devfeed.tech/tags/container-images.md>), [developer](<https://devfeed.tech/tags/developer.md>), [docker](<https://devfeed.tech/tags/docker.md>), [docker-hub](<https://devfeed.tech/tags/docker-hub.md>), [docker-hub-verified-publisher](<https://devfeed.tech/tags/docker-hub-verified-publisher.md>), [docker-verified-publisher](<https://devfeed.tech/tags/docker-verified-publisher.md>), [dockerhub](<https://devfeed.tech/tags/dockerhub.md>), [hardened-images](<https://devfeed.tech/tags/hardened-images.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [security](<https://devfeed.tech/tags/security.md>), [software-supply-chain](<https://devfeed.tech/tags/software-supply-chain.md>), [verified-publisher](<https://devfeed.tech/tags/verified-publisher.md>)

### AI overview

Chainguard Images are now available on Docker Hub after Chainguard joined the Docker Verified Publisher program. The partnership gives developers access to minimal, secure, hardened images for open source and cloud-native projects, with guidance for finding and pulling verified images.

### Source excerpt

Chainguard Images joins Docker Hub as a Verified Publisher, offering developers secure, hardened images for open source projects.

## Building minimal and low CVE images for compiled languages

DevFeed: [Building minimal and low CVE images for compiled languages](<https://devfeed.tech/articles/building-minimal-and-low-cve-images-for-compiled-languages-12906.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/building-minimal-and-low-cve-images-for-compiled-languages>)

Published: 2024-02-27T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [chainguard images](<https://devfeed.tech/topics/chainguard-images.md>), [Containers](<https://devfeed.tech/topics/containers.md>), [Docker](<https://devfeed.tech/topics/docker.md>), [Dockerfile](<https://devfeed.tech/topics/dockerfile.md>), [Go Language](<https://devfeed.tech/topics/go-language.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [Docker Hub](<https://devfeed.tech/topics/docker-hub.md>), [Debian](<https://devfeed.tech/topics/debian.md>), [Ubuntu](<https://devfeed.tech/topics/ubuntu.md>)

Tags: [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-images](<https://devfeed.tech/tags/chainguard-images.md>), [compiled-language](<https://devfeed.tech/tags/compiled-language.md>), [containers](<https://devfeed.tech/tags/containers.md>), [deployment](<https://devfeed.tech/tags/deployment.md>), [distroless](<https://devfeed.tech/tags/distroless.md>), [docker](<https://devfeed.tech/tags/docker.md>), [docker-hub](<https://devfeed.tech/tags/docker-hub.md>), [dockerfiles](<https://devfeed.tech/tags/dockerfiles.md>), [dockerhub](<https://devfeed.tech/tags/dockerhub.md>), [go](<https://devfeed.tech/tags/go.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>)

### AI overview

This article demonstrates how to build smaller, lower-CVE container images for compiled languages by separating build and runtime concerns and replacing full Debian or Ubuntu bases with Chainguard Images. A Go web server example reduces the image from 892 MB to 775 MB and eliminates the reported CVEs after a one-line base-image change.

### Source excerpt

Leverage Chainguard's insights to forge low-CVE, compact images for compiled languages, boosting your security posture.

## Apache Airflow 1.10.10

DevFeed: [Apache Airflow 1.10.10](<https://devfeed.tech/articles/apache-airflow-1-10-10-32528.md>)

Original publisher: [Read original article](<https://airflow.apache.org/blog/airflow-1.10.10/>)

Author: Apache Airflow

Published: 2020-04-09T00:00:00Z

Content type: release

Language: en

Sources: [Apache Airflow Blog](<https://devfeed.tech/sources/apache-airflow-blog.md>)

Topics: [airflow](<https://devfeed.tech/topics/airflow.md>), [Docker](<https://devfeed.tech/topics/docker.md>), [Python](<https://devfeed.tech/topics/python.md>), [changelog](<https://devfeed.tech/topics/changelog.md>), [HashiCorp Vault](<https://devfeed.tech/topics/hashicorp-vault.md>), [ui](<https://devfeed.tech/topics/ui.md>)

Tags: [3](<https://devfeed.tech/tags/3.md>), [airflow](<https://devfeed.tech/tags/airflow.md>), [apache-airflow](<https://devfeed.tech/tags/apache-airflow.md>), [bug-fixes](<https://devfeed.tech/tags/bug-fixes.md>), [changelog](<https://devfeed.tech/tags/changelog.md>), [docker](<https://devfeed.tech/tags/docker.md>), [docker-image](<https://devfeed.tech/tags/docker-image.md>), [dockerhub](<https://devfeed.tech/tags/dockerhub.md>), [environment-variables](<https://devfeed.tech/tags/environment-variables.md>), [hashicorp-vault](<https://devfeed.tech/tags/hashicorp-vault.md>), [new-features](<https://devfeed.tech/tags/new-features.md>), [python](<https://devfeed.tech/tags/python.md>), [release](<https://devfeed.tech/tags/release.md>), [timezone](<https://devfeed.tech/tags/timezone.md>), [ui](<https://devfeed.tech/tags/ui.md>)

### AI overview

Apache Airflow 1.10.10 includes 199 commits since version 1.10.9, with 11 new features, 43 improvements, 44 bug fixes, and documentation changes. Notable additions include selectable RBAC UI timezones, production Docker images, secrets backends, DAG serialization for stateless webservers, and other UI and task-execution changes.

### Source excerpt

Airflow 1.10.10 contains 199 commits since 1.10.9 and includes 11 new features, 43 improvements, 44 bug fixes, and several doc changes. Details: PyPI: https://pypi.org/project/apache-airflow/1.10.10/ Docs: https://airflow.apache.org/docs/1.10.10/ Changelog: http://airflow.apache.org/docs/1.10.10/changelog.html Some of the noteworthy new features (user-facing) are: Allow user to choose timezone to use in the RBAC UI Add Production Docker image support Allow Retrieving Airflow Connections & Variables from various Secrets backend Stateless Webserver using DAG Serialization Tasks with Dummy Operators are no longer sent to executor Allow passing DagRun conf when triggering dags via UI Allow user to choose timezone to use in the RBAC UI By default the Web UI will show times in UTC. It is possible to change the timezone shown by using the menu in the top right (click on the clock to activate it): Screenshot: Details: https://airflow.apache.org/docs/1.10.10/timezone.html#web-ui Note: This feature is only available for the RBAC UI (enabled using rbac=True in [webserver] section in your airflow.cfg). Add Production Docker image support There are brand-new production images (alpha quality) available for Airflow 1.10.10. You can pull them from the Apache Airflow Dockerhub repository and start using it. More information about using production images can be found in https://github.com/apache/airflow/blob/master/IMAGES.rst#using-the-images. Soon it will be updated with information how to use images using official helm chart. To pull the images you can run one of the following commands: docker pull apache/airflow:1.10.10-python2.7 docker pull apache/airflow:1.10.10-python3.5 docker pull apache/airflow:1.10.10-python3.6 docker pull apache/airflow:1.10.10-python3.7 docker pull apache/airflow:1.10.10 (uses Python 3.6) Allow Retrieving Airflow Connections & Variables from various Secrets backend From Airflow 1.10.10, users would be able to get Airflow Variables from Environment Variabl